Show filters
16 Total Results
Displaying 11-16 of 16
Sort by:
Attacker Value
Unknown
Out-of-Bounds write in systemd-networkd dhcpv6 option handling
Disclosure Date: October 26, 2018 (last updated November 27, 2024)
A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.
0
Attacker Value
Unknown
CVE-2018-1049
Disclosure Date: February 16, 2018 (last updated November 26, 2024)
In systemd prior to 234 a race condition exists between .mount and .automount units such that automount requests from kernel may not be serviced by systemd resulting in kernel holding the mountpoint and any processes that try to use said mount will hang. A race condition like this may lead to denial of service, until mount points are unmounted.
0
Attacker Value
Unknown
CVE-2018-6954
Disclosure Date: February 13, 2018 (last updated November 08, 2023)
systemd-tmpfiles in systemd through 237 mishandles symlinks present in non-terminal path components, which allows local users to obtain ownership of arbitrary files via vectors involving creation of a directory and a file under that directory, and later replacing that directory with a symlink. This occurs even if the fs.protected_symlinks sysctl is turned on.
0
Attacker Value
Unknown
CVE-2017-15908
Disclosure Date: October 26, 2017 (last updated November 26, 2024)
In systemd 223 through 235, a remote DNS server can respond with a custom crafted DNS NSEC resource record to trigger an infinite loop in the dns_packet_read_type_window() function of the 'systemd-resolved' service and cause a DoS of the affected service.
0
Attacker Value
Unknown
CVE-2016-7795
Disclosure Date: October 13, 2016 (last updated November 25, 2024)
The manager_invoke_notify_message function in systemd 231 and earlier allows local users to cause a denial of service (assertion failure and PID 1 hang) via a zero-length message received over a notify socket.
0
Attacker Value
Unknown
CVE-2012-0871
Disclosure Date: April 18, 2014 (last updated October 05, 2023)
The session_link_x11_socket function in login/logind-session.c in systemd-logind in systemd, possibly 37 and earlier, allows local users to create or overwrite arbitrary files via a symlink attack on the X11 user directory in /run/user/.
0